CVE-2023-25648
EUVD-2023-2958714.12.2023, 07:15
There is a weak folder permission vulnerability in ZTE's ZXCLOUD iRAI product. Due to weak folder permission, an attacker with ordinary user privileges could construct a fake DLL to execute command to escalate local privileges.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| zte | zxcloud_irai | 𝑥 < 7.23.21 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration